---
title: Ping Federate & Ping Identity SAML SSO Setup Example
short: Ping Federate & Ping Identity & PingOne SAML SSO Setup
tier: enterprise
order: 253
meta_title: Ping Federate & Ping Identity & PingOne SAML SSO Setup Example
meta_description: Label Studio Enterprise documentation for setting up Ping Federate & Ping Identity & PingOne SAML SSO Setup Example.
hide_sidebar: true
---
## PingOne Configuration
### Add new application
1. Click blue circle with the `+` sign.
2. Select `Manual Enter`, enter URLs from the Label Studio Enterprise SAML SSO page.
3. The result
### Overview Tab
### Configuration Tab
### Attributes Tab
You should use this group value in mapping:
```
Expression: ${user.memberOfGroupNames == null ? '': #string.join(user.memberOfGroupNames, ',')}
```
### Policies Tab
### Access Tab
## Users & Groups
!!! warning
All users should have at least one group, otherwise it will lead to the login error.
## Label Studio Enterprise Settings
You can find LSE SAML SSO settings on the **Organization** page >> **SAML SSO**. You are able to map user roles and workspaces with `Groups` attribute.
## Login using SSO
Now you are able to login using your SSO session, write your company domain on the SSO Login page:
Administrators can find the domain on the SAML SSO page: